Lucene search

K
cve[email protected]CVE-2023-44996
HistoryOct 10, 2023 - 4:15 p.m.

CVE-2023-44996

2023-10-1016:15:10
CWE-352
web.nvd.nist.gov
11
cve
2023
44996
csrf
vulnerability
naresh parmar
post view count plugin
nvd

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.3%

Cross-Site Request Forgery (CSRF) vulnerability in Naresh Parmar Post View Count plugin <= 1.8.2 versions.

Affected configurations

Vulners
NVD
Node
naresh_parmarpost_view_countRange1.8.2

CNA Affected

[
  {
    "collectionURL": "https://wordpress.org/plugins",
    "defaultStatus": "unaffected",
    "packageName": "wp-simple-post-view",
    "product": "Post View Count",
    "vendor": "Naresh Parmar",
    "versions": [
      {
        "lessThanOrEqual": "1.8.2",
        "status": "affected",
        "version": "n/a",
        "versionType": "custom"
      }
    ]
  }
]

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

8.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.3%

Related for CVE-2023-44996